uiso9_pe.exe

UltraISO

EZB Systems, Inc.

The program is a setup application that uses the Inno Setup installer. The file has been seen being downloaded from dw.ezbsys.net.
Publisher:
EZB Systems, Inc.

Product:
UltraISO

Description:
UltraISO Setup

Version:
9.6.5.3237

MD5:
72d964201bbf202065951db2a84ad6c8

SHA-1:
379d9e5c93dc347404243b0f740c059706071cad

SHA-256:
540fd29a5a2245d2bf90007fa8959bd4ebd72ed77e7cdd188f06e789703475af

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/27/2024 6:31:07 AM UTC  (today)

File size:
4.3 MB (4,466,696 bytes)

Product version:
9.6.5.3237

Copyright:
(c) EZB Systems, Inc.

File type:
Executable application (Win32 EXE)

Installer:
Inno Setup

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\uiso9_pe.exe

File PE Metadata
Compilation timestamp:
6/19/1992 7:22:17 PM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
98304:DFjG4e5iCbVpO+qslSmQnptuS0xWuqIrBmgIyEjIfdY6fC:ZjJeZbVpOlslSmQptc8uqCBmgMjT6fC

Entry address:
0xA5F8

Entry point:
32, D5, 8D, 15, B8, 0D, 46, 1A, 0F, BE, D8, 0F, BE, DA, 85, F1, 81, FD, 16, 9F, 00, 00, 74, 07, 89, FF, 0B, FE, 0F, AF, D5, 81, FF, A3, 11, 00, 00, 76, 07, 4F, 69, CF, B4, 92, DD, F5, 84, DE, 70, 0A, 8B, F8, 0B, FB, 69, FB, AE, 5A, 92, 09, 0F, AF, FB, 8B, D7, 78, 02, 0F, CF, 81, F7, 4D, B0, 66, 20, 8B, CA, 87, D2, C6, C6, AD, 8D, 01, 50, 5B, F7, C3, E0, D4, 86, E2, 84, E4, 8B, EB, 8D, 1D, 92, 06, 94, AD, 81, FB, 6E, 1F, 00, 00, 75, 02, 23, DD, 03, F5, 00, C0, 78, 0A, F7, C6, 59, 3B, EB, C8, 89, D0, 86, E0...
 
[+]

Code size:
39.5 KB (40,448 bytes)

The file uiso9_pe.exe has been seen being distributed by the following URL.

Scan uiso9_pe.exe - Powered by Reason Core Security